Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Using Splunk DB Connect 1, how can I enrich my search results by inserting matching values from a MySQL database?

$
0
0
I want to be able to enrich my Splunk search results using data in a MySQL database. Where the 'hostname' field in my Splunk search results matches the hostname field in my database, I want to insert the IP address from the database. So far I have set up the database connection within Splunk using DB Connect 1, and have returned the contents of my database using dbquery in the search bar. But how do I now create the database lookup that inserts the IP address into my search results when the hostname is found? *(I've read all of the documentation but it isn't helping me to understand, I'd appreciate it if someone could provide an explanation with an example).*

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>